When attempting to transfer a Support Bundle directly from the Engine interface (Admin or System Setup), the following error may be encountered:
Error Cannot upload the file to HTTP server "https://upload.delphix.com/" (PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target). Error Code exception.system.http.upload.failed Suggested Action Make sure that the proxy settings are correct.
The Delphix Engine has a Web Proxy server configured and enabled under Outbound Connectivity in the System Setup interface.
Applicable Delphix Versions
- Click here to view the versions of the Delphix engine to which this article applies
Major Release All Sub Releases 6.0 220.127.116.11, 18.104.22.168, 22.214.171.124, 126.96.36.199, 188.8.131.52, 184.108.40.206, 220.127.116.11, 18.104.22.168, 22.214.171.124, 126.96.36.199, 188.8.131.52, 184.108.40.206, 220.127.116.11, 18.104.22.168, 22.214.171.124, 126.96.36.199, 188.8.131.52, 184.108.40.206, 220.127.116.11, 18.104.22.168
22.214.171.124, 126.96.36.199, 188.8.131.52, 184.108.40.206, 220.127.116.11, 18.104.22.168, 22.214.171.124, 126.96.36.199, 188.8.131.52, 184.108.40.206, 220.127.116.11, 18.104.22.168, 22.214.171.124, 126.96.36.199, 188.8.131.52, 184.108.40.206, 220.127.116.11, 18.104.22.168
22.214.171.124, 126.96.36.199, 188.8.131.52, 184.108.40.206, 220.127.116.11, 18.104.22.168, 22.214.171.124, 126.96.36.199
188.8.131.52, 184.108.40.206, 220.127.116.11, 18.104.22.168, 22.214.171.124, 126.96.36.199, 188.8.131.52, 184.108.40.206, 220.127.116.11, 18.104.22.168, 22.214.171.124, 126.96.36.199, 188.8.131.52
184.108.40.206, 220.127.116.11, 18.104.22.168, 22.214.171.124, 126.96.36.199, 188.8.131.52, 184.108.40.206, 220.127.116.11, 18.104.22.168, 22.214.171.124, 126.96.36.199, 188.8.131.52, 184.108.40.206, 220.127.116.11, 18.104.22.168
This message can occur in a web proxy environment if the proxy server is not configured to provide SSL tunneling for HTTPS connections but is inspecting packets.
Rather, these proxy server configurations are establishing SSL connection between the Delphix Engine and another connection to Delphix Upload site (https://upload.delphix.com). In these configurations, the Delphix Engine is presented with the certificate chain generated on the proxy server, rather than Delphix Upload site, and this chain is not trusted by the Engine as the SSL certificate is self-signed.
This can be confirmed manually using curl from any other host in the environment/subnet/network:
$ curl https://upload.delphix.com --proxy http://exampleproxy.delphix.com:3128 curl: (60) SSL certificate problem: self signed certificate in certificate chain More details here: https://curl.haxx.se/docs/sslcerts.html curl failed to verify the legitimacy of the server and therefore could not establish a secure connection to it. To learn more about this situation and how to fix it, please visit the web page mentioned above.
To resolve this behavior, the proxy server should be configured to create an SSL tunnel between the Delphix Engine and the Delphix Upload site.
Specific instruction on proxy configuration is outside the scope of this document and is the responsibility of the Network / Proxy administrator. This may be possible to configure on a global or per-connection basis.
If these options are not available, the Support log bundle can be download to desktop and manually uploaded to https://upload.delphix.com.
The following articles may provide more information or related information to this article: